2026-03-14 15:26:03
One writer whose name was offered as editing help for Grammarly users tells why she is lead plaintiff in a class-action suit against Grammarly's parent company (Julia Angwin/New York Times)
https://www.nytimes.com/2026/…
One writer whose name was offered as editing help for Grammarly users tells why she is lead plaintiff in a class-action suit against Grammarly's parent company (Julia Angwin/New York Times)
https://www.nytimes.com/2026/…
A follow up here on action items (assuming you’re already using trusted publishers OIDC to scope releases to a single GitHub Action workflow):
1. Look for any `pull_request_target` GitHub Actions workflows! (this allows external forks/code to run your actions with write access ☠️☠️☠️☠️☠️)
2. Look for use of `cache` in your GitHub Actions release workflow (cache was poisoned/compromised by `pull_request_target` trigger)
Learn more about `pull_request_target`:
Cisco's Unified Intelligence Center, CSIRT, and EOC teams contained the breach involving a malicious "GitHub Action plugin" from the recent Trivy compromise.
https://www.bleepingcomputer.com/news/security/cisco-sou…
Former Trump and Biden AI advisers Dean Ball and Ben Buchanan urge bipartisan action on AI security risks, including tighter export controls and safety audits (New York Times)
https://www.nytimes.com/2026/05/04/opinion
The font and colors are subject to change, (though I'm kind of digging the dark blue), but the next portion of the Warlock project is coming together! This will serve as the public documentation and information site for the project, for folks not wanting to solely use Github. Still a lot of work to do, but making good progress on it.
OH, and the screenshot is being generated by the following "code"
::: section .showcase
::: .blocks-2
::: .block
# Warlock Ne…
After my repeated posts / boosts arguing that in OSS we’ve overemphasized licenses and underemphasized community, governance, and sustainability…I actually have a license question:
What’s the current thinking on licenses that lay the legal groundwork for action against people using OSS source code for LLM training without seeking permission or offering compensation?
1/2
How many fronts can we handle?
#uspol #ecuador #military #SpreadThin